Honest PC security. Defender, done right.

A real Security Center built on the antivirus you already trust — Microsoft Defender. We ship no second engine and no signatures of our own; we drive the Defender that's already in Windows. Add a native persistence audit and system-wide ad, tracker & malware blocking by DNS. No scareware. No fake counts. Every hardening toggle can be switched back.

Zero second AV engines No "disable Defender" button Protected undo for supported changes
SECURITY CENTER · WRAPPER DEFENDER the engine — Microsoft's, already in Windows REAL-TIME ON ✓ TAMPER ON ✓ DEFS AGE 1 day 2ND ENGINE NONE example readout — the app shows your machine's status
01 Security Center

A Security Center built on Microsoft Defender

See your live protection at a glance and control it in one click — without a second antivirus fighting the first.

Most "security suites" install a whole new engine that elbows Defender out of the way, then sell you a subscription to fix the gap they created. We went the other direction. The Security Center is an honest wrapper over the Defender already in Windows. It shows your live protection posture — real-time protection, definition age and version, last quick and full scan, tamper protection, behaviour monitoring — and lets you run Defender Quick, Full or Folder scans in a click, with real threat history and Defender's quarantine list. Restoring a quarantined file stays in Windows Security, where the detection details sit next to the decision — that is not a call an optimizer should be taking for you.

Live protection posture

Real-time status, definition age, last scan, tamper protection and behaviour monitoring — read straight from Defender. If a read fails it says "status unavailable", never a fake "unprotected".

Scan in a click

Quick, Full or Folder scans, driven through Defender's own engine. Full scans auto-pause while a game or emulator is running. We do not offer a definition-update button — Windows Update already delivers those several times a day.

Real threats, real quarantine

Your actual threat history and Defender's quarantine list, read straight from Defender. Restoring an item is done in Windows Security. No invented threat counts, no "47 issues found" scare screen.

5 reversible hardening toggles

Cloud-delivered protection, automatic sample submission, block PUA, Controlled Folder Access and Network Protection. CFA and Network Protection start in safe Audit mode — log only, block nothing. Each remembers its prior value so Undo is exact.

What it does Strengthen Defender with reversible one-tap hardening — cloud protection, PUA blocking, ransomware-guard and network protection, started in safe Audit mode. Every toggle remembers your original setting so Undo is exact. Pro adds Guardian Engine 15 auto-maintenance: an idle quick scan, timed for when you are not using the PC and never while you are gaming.
What we refuse to ship A second antivirus engine or our own signatures. Registering as a Security Center AV (which would silently disable Defender). A "disable Defender" button. Fake virus or threat counts. A fake "unprotected" when a status read fails — we say "status unavailable" instead. No scareware. Just an honest view and one-click control.
02 Integrity Audit

System Integrity Audit — a true persistence audit

The Integrity Audit scans the places malware actually hides — using only files and metadata.

A true persistence audit. It scans WMI persistence, IFEO hijacks, rogue scheduled tasks, hosts/proxy redirects and fake system processes — using only files-at-rest and WMI metadata. No engine, no driver, no injection. It never reads a game's live memory and never calls OpenProcess into an anti-cheat. Findings are ranked by severity and confidence.

10 checks for where malware persists

Metadata only — no engine, no signatures, no driver. Each finding is ranked by severity and confidence:

WMI persistence — permanent event consumers that survive reboots.
Run-key autoruns — suspicious entries set to launch at sign-in.
Scheduled tasks — rogue tasks hiding as system jobs.
Image hijacks — IFEO, Winlogon and AppInit_DLLs takeovers.
Hosts redirects — entries quietly rerouting your traffic.
Proxy / PAC hijacks — silent man-in-the-middle proxy settings.
Browser extensions — force-installed, off-store add-ons.
Rogue root certificates — self-injected, non-CTL trusted roots (detect-only).
Services from temp — services running out of temp folders.
Process masquerade — fake "system" processes wearing a trusted name.
What it does Most fixes are one click and rollback-supported where applicable — they ride the same signed-backup Undo as the optimizer modules. The risky stuff (like removing a trusted-root certificate) is detect-only with manual guidance, never auto-changed. Pro adds Guardian Engine 16: a daily persistence-baseline diff that alerts only on new persistence items.
What we refuse to ship No engine, no driver, no injection, no live-memory scan, and it never calls OpenProcess into a game or anti-cheat. It won't flag your games: BattlEye, EAC, Riot, FACEIT, nProtect, mhyprot and emulator/GameLoop components are allow-listed before anything is shown. On org-managed PCs, proxy, extension and root-cert flags are suppressed. No fake "health %", no invented threat numbers.
03 DNS blocking & privacy

Block ads, trackers & malware — with DNS, not a hosts hack

System-wide blocking for every browser and every app, plus 16 reversible Windows privacy switches.

Block ad, tracker and malware domains across your whole PC — every browser, every app — by switching to a filtering DNS resolver. No browser extension required. An optional adult-content category switches to AdGuard Family DNS, which adds adult-content blocking and SafeSearch. It lives in the Privacy Center, alongside a separate encrypted-DNS (DoH) toggle and 16 reversible Windows privacy and telemetry switches.

DNS ad, tracker & malware blocking

Point your active adapter at a filtering resolver to block ad, tracker and malware domains everywhere — no extension. An optional category adds adult-content blocking and SafeSearch via AdGuard Family DNS.

Encrypted DNS (DoH)

A separate one-tap toggle for DNS-over-HTTPS, so your lookups can't be read or tampered with on the wire.

16 privacy switches

Sixteen reversible Windows privacy and telemetry toggles, grouped General / Telemetry / Tracking & ads / Windows AI — including Windows Recall (AI snapshots) blocking and Edge telemetry. Each reverts to the captured Windows default.

Protected DNS rollback

We snapshot and validate real IP addresses, never disable the Windows DNS Client service, and restore the captured configuration only after re-parsing it. If the protected backup is invalid, rollback safely returns the adapter to automatic DNS.

What it does Filtering DNS blocks ads, trackers and malware domains across your whole PC — every browser, every app — with no extension. We snapshot your real DNS first, only flush (never disable) the Windows DNS Client service, and offer a separate encrypted-DNS (DoH) toggle. Caution items like location and Recall are flagged, and every privacy switch reverts to the Windows default.
What we refuse to ship This is filtering DNS, not a hosts-file hack. There's no giant blocklist file to choke Windows DNS, nothing for antivirus to lock, and turning it off restores the captured DNS configuration with an automatic-DNS fallback that restores the DNS settings you had before. We never disable the Windows DNS Client service, and we refuse to apply it on managed or work PCs.
04 One-click

Two buttons on the dashboard. Both honest.

A safe pass for everyone, and an explicit aggressive pass when you know what you're trading.

Smart Optimize selects the modules matched to your hardware tier, and confirms how many of them are flagged Caution before it runs. It does not silently change privacy or Windows security. System-wide changes—including VBS/HVCI or Spectre mitigation controls—are explicit Caution or Advanced actions with their security and restart costs shown first.

0
second AV engines shipped
10
integrity checks
16
privacy switches
100%
reversible
What we're honest about Disabling VBS or Spectre/Meltdown mitigations lowers Windows security, may require a restart and may provide no measurable benefit on a particular PC. Those controls are Advanced and are never part of Smart Optimize. Result chips report measured work rather than invented performance gains.
05 Straight answers

Your security questions, answered straight

Does this replace my antivirus?

No. The Security Center is an honest wrapper over Microsoft Defender — the antivirus already in Windows. It ships no second engine and no signatures of its own; it drives the Defender you already trust. It never registers itself as a Security Center AV, because that would silently disable Defender, and there is no "disable Defender" button.

Will the Integrity Audit flag my games or anti-cheat?

No. BattlEye, EAC, Riot vgk/vgc, FACEIT, nProtect, mhyprot and emulator/GameLoop components are allow-listed before anything is surfaced. The scan uses only files-at-rest and WMI metadata — no engine, no driver, no injection — and never reads a game's live memory. It's a persistence audit, not real-time antivirus.

Does the ad blocker edit my hosts file?

No. It's filtering DNS — it points your active adapter at AdGuard's public resolver. There's no giant hosts-file blocklist to choke Windows DNS, nothing for antivirus to lock. We snapshot your real DNS first, only flush (never disable) the Windows DNS Client service, and turning it off is protected DNS rollback that restores the DNS settings you had before.

Is all of this free?

Yes. The Security Center, Integrity Audit, DNS blocking and the 16 privacy switches are all free. Pro adds two Guardian auto-maintenance engines: an idle Defender quick scan, and a daily persistence-baseline diff that alerts only on new items.

Can I undo a change I don't like?

Yes. Every Defender hardening toggle and most Integrity Audit fixes ride the same signed-backup Undo as the optimizer modules and restore the exact prior value. Risky items like root-cert removal are detect-only with guidance. DNS blocking is protected DNS rollback, and every privacy switch reverts to the Windows default. More in the FAQ and on the safety page.

◆ Ultra

Everything in Pro, plus Smart Route

The same honesty rules extend to your connection: the game relay measures your real path and only reroutes when it genuinely beats your ISP, stays direct when it can't help. $9.99 (charged as ₹899)/year, renews yearly until you cancel; measuring your route stays free for everyone.

Get Ultra How it works →

Honest security, no scareware

A real view of Defender, a true persistence audit, and system-wide ad and tracker blocking by DNS — all free, rollback-supported where applicable. No second engine. No fake counts. No hosts-file hack.